AMD TPM Exploit: faulTPM Attack Defeats BitLocker and TPM-Based Security (Updated)

AMD fTPM Attack

(Image credit: Technische Universitat Berlin – SecT)
Paul Alcorn
Editor-in-Chief

Paul Alcorn is the Editor-in-Chief for Tom's Hardware US. He also writes news and reviews on CPUs, storage, and enterprise hardware.

  • lightofhonor
    I would be more concerned with someone having access to my disassembled PC for several hours than the risk of this attack.
    Reply
  • PEnns
    "The attack does require physical access to the machine for 'several hours.'"
    Seriously?? If somebody has access to your PC that long, that "hack" is the least of your problems.

    This pathetic story is typical of the anti-AMD BS articles that get posted here lately. Wouldn't surprise me in the least if it turns out that Intel funded the whole pathetic "hack"!
    Reply
  • drivinfast247
    Crap! Just yesterday some dweeb with glasses and a pocket protector came to my door and asked to see my PC for a bit! Why would I have thought anything bad would come of it!?
    Reply
  • JamesJones44
    PEnns said:
    "The attack does require physical access to the machine for 'several hours.'"
    Seriously?? If somebody has access to your PC that long, that "hack" is the least of your problems.

    This pathetic story is typical of the anti-AMD BS articles that get posted here lately. Wouldn't me surprise me in the least if it turns out that Intel funded the whole pathetic "hack"!
    Please, if this were an Apple attack it would be front page of every news outlet on the planet. This isn't just an AMD smear article, you see these articles about about "hacks" for physical hardware all the time. I read one just the other day about compromising Samsung Exynos CPU security with a physical hack. Google's project zero puts out reports like these monthly.
    Reply
  • ralfthedog
    lightofhonor said:
    I would be more concerned with someone having access to my disassembled PC for several hours than the risk of this attack.

    PEnns said:
    "The attack does require physical access to the machine for 'several hours.'"
    Seriously?? If somebody has access to your PC that long, that "hack" is the least of your problems.

    This pathetic story is typical of the anti-AMD BS articles that get posted here lately. Wouldn't me surprise me in the least if it turns out that Intel funded the whole pathetic "hack"!
    If the data on your system is very valuable, there is a risk that people will break into your offices and walk off with your hardware. If the data is highly encrypted, this is much less of a threat. The key is to use both full disk hardware encryption and high bit depth encryption at the file level. If you wish to add software based file system encryption, that is also an option.

    Remember, corporations are not worried about the loss of the hardware, they are worried about the loss of the data on the hardware.
    Reply
  • Dr3ams
    As an average user, I could care less about this article. Also...a company or government agency that works with highly sensitive data is going to have more than hardware and software security to protect their property.
    Reply
  • FlyingBuzz
    This type of attack might be harmful for game console business. Since access is suppose to be locked and keys are suppose to be hidden.

    Other than that, I dont think we have to worry..
    Reply
  • Vanderlindemedia
    It's a hack that, cant really be a danger in the wild. You'll need a couple of hours physical access to a already stripped machine.

    It would be dangerous if there was a hack that was able from user space to read it's TPM.
    Reply
  • hotaru.hino
    Any vulnerability, no matter what the requirements are, may lead to finding other vectors of attack that could be easier or more convenient now that they're aware of a weak spot. If you dismiss every "requires physical access" vulnerability as a non-problem, you'll be blindsided by someone who found a way to remove that requirement. Or lowered the bar enough to make it convenient to do.

    As an aside, speedrunners thought a lot of strats were tool-assisted (TAS) only; i.e., humanly impossible. But they used what the TAS did as a starting point to find a vector into doing something like RNG manipulation or arbitrary code execution that could be done by sufficiently skilled humans.
    Reply
  • Charogne
    I heard there is a hack on windows that, if you give access to a evil russian hacker for several hours, with all your passwords, he can do lot of stuff on your pc.
    Reply